Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 4

Количество 4

ubuntu логотип

CVE-2024-52805

почти 2 года назад

Synapse is an open-source Matrix homeserver. In Synapse before 1.120.1, multipart/form-data requests can in certain configurations transiently increase memory consumption beyond expected levels while processing the request, which can be used to amplify denial of service attacks. Synapse 1.120.1 resolves the issue by denying requests with unsupported multipart/form-data content type.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2024-52805

почти 2 года назад

Synapse is an open-source Matrix homeserver. In Synapse before 1.120.1, multipart/form-data requests can in certain configurations transiently increase memory consumption beyond expected levels while processing the request, which can be used to amplify denial of service attacks. Synapse 1.120.1 resolves the issue by denying requests with unsupported multipart/form-data content type.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2024-52805

почти 2 года назад

Synapse is an open-source Matrix homeserver. In Synapse before 1.120.1 ...

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-rfq8-j7rh-8hf2

почти 2 года назад

Synapse allows unsupported content types to lead to memory exhaustion

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2024-52805

Synapse is an open-source Matrix homeserver. In Synapse before 1.120.1, multipart/form-data requests can in certain configurations transiently increase memory consumption beyond expected levels while processing the request, which can be used to amplify denial of service attacks. Synapse 1.120.1 resolves the issue by denying requests with unsupported multipart/form-data content type.

CVSS3: 7.5
1%
Низкий
почти 2 года назад
nvd логотип
CVE-2024-52805

Synapse is an open-source Matrix homeserver. In Synapse before 1.120.1, multipart/form-data requests can in certain configurations transiently increase memory consumption beyond expected levels while processing the request, which can be used to amplify denial of service attacks. Synapse 1.120.1 resolves the issue by denying requests with unsupported multipart/form-data content type.

CVSS3: 7.5
1%
Низкий
почти 2 года назад
debian логотип
CVE-2024-52805

Synapse is an open-source Matrix homeserver. In Synapse before 1.120.1 ...

CVSS3: 7.5
1%
Низкий
почти 2 года назад
github логотип
GHSA-rfq8-j7rh-8hf2

Synapse allows unsupported content types to lead to memory exhaustion

1%
Низкий
почти 2 года назад

Уязвимостей на страницу